Manulife is seeking an Analyst Information Risk Management to support the execution of secondline oversight and challenge activities across technology data and operational risk domains. Reporting to the Director IRM IRO this role provides analytical operational and governance support to ensure that technology and data risks are managed in alignment with Manulifes risk appetite and regulatory expectations.
This role is an individual contributor focused on execution and delivery by performing independent challenges and oversight over core functions.
Domain Level Challenge and Oversight:
The Analyst will support secondline oversight activities across multiple disciplines including:
Key Responsibilities:
Risk & Control Self-Assessments (RCSA)
Coordinate evidence collection control reviews and documentation.
Compare assessments against standards and highlight potential control gaps.
ThirdParty / Vendor Technology Risk
Assist in duediligence reviews evidence validation and thirdparty residual risk analysis.
Support challenge of vendor risk assessments and remediation activities.
Initiative & Change Risk
Support the review of technology and operational change initiatives for potential risk impacts.
Assist in assessing design adequacy of proposed controls.
Reportable Events & Incident Analysis
Support secondline review of incidents root cause analysis and event classification.
Track remediation effectiveness and recurring themes.
Issue Management
Support challenge of risk acceptances and corrective action plans (CAPs).
Assist in monitoring remediation progress and assessing sufficiency of closure evidence.
BCM DR and Critical Operations Assessments
Support oversight of Business Continuity Plans Disaster Recovery testing and Critical Operations identification.
Perform analysis of test results gaps and effectiveness of resilience controls.
Data Analysis & Risk Insights
Perform data extraction cleansing and analysis to identify trends across risk events issues controls and assessments.
Support production of risk intelligence packages for stakeholders
Help translate technical data into clear stakeholderfriendly insights.
Automation Generative AI & Agentic AI Enablement
Utilize workflow automation tools and GenAI to streamline review reporting and analysis tasks.
Support the adoption of Agentic AI automations to reduce manual effort in risk assessments and data validation.
Assist in testing tuning and iterating automated processes used in secondline oversight.
Contribute to continuous control monitoring by applying datadriven and automation-enabled analysis.
Stakeholder Engagement & Collaboration
Partner with stakeholders to support oversight activities and analysis.
Work closely with second line representation of Segments
Maintain strong professional relationships while delivering objective challenges.
Key Outcomes
Accurate and timely support of secondline assessments and oversight activities.
Improved consistency and traceability of second line deliverables
Increased use of automation AI and orchestration in risk processes.
Enhanced quality of risk reporting data insights and evidence reviews.
Strengthening regulatory confidence in technology and operational risk oversight.
Required Qualifications
24 years of experience in Information Risk Technology Risk Operational Risk Cybersecurity Compliance or related fields.
Strong ability to adhere to consistent process-oriented requirements for challenge and oversight
Foundational understanding of risk management practices (RCSA issues incidents BC/DR vendor risk etc.).
Ability to analyze technical and operational data and summarize findings clearly.
Experience with or interest in learning automation tooling Generative AI and Agentic AI.
Familiarity with GRC platforms (e.g. Archer ServiceNow Fusion) is an asset.
Knowledge of control frameworks (NIST ISO COBIT CSA etc.) is beneficial.
Strong communication documentation and analytical skills with the ability to work in a structured detailoriented way.
When you join our team:
Well empower you to learn and grow the career you want.
Well recognize and support you in a flexible environment where well-being and inclusion are more than just words.
As part of our global team well support you in shaping the future you want to see.
About Manulife and John Hancock
Manulife Financial Corporation is a leading international financial services provider helping people make their decisions easier and lives better. To learn more about us visit is an Equal Opportunity Employer
At Manulife/John Hancock we embrace our diversity. We strive to attract develop and retain a workforce that is as diverse as the customers we serve and to foster an inclusive work environment that embraces the strength of cultures and individuals. We are committed to fair recruitment retention advancement and compensation and we administer all of our practices and programs without discrimination on the basis of race ancestry place of origin colour ethnic origin citizenship religion or religious beliefs creed sex (including pregnancy and pregnancy-related conditions) sexual orientation genetic characteristics veteran status gender identity gender expression age marital status family status disability or any other ground protected by applicable law.
It is our priority to remove barriers to provide equal access to employment. A Human Resources representative will work with applicants who request a reasonable accommodation during the application process. All information shared during the accommodation request process will be stored and used in a manner that is consistent with applicable laws and Manulife/John Hancock policies. To request a reasonable accommodation in the application process contact .
Working Arrangement
Required Experience:
Senior IC
Manulife is a leading financial services group. We provide financial advice, insurance, as well as wealth and asset management solutions for individuals, groups and institutions.